First published: Fri Mar 26 2021(Updated: )
MuleSoft is aware of a Remote Code Execution vulnerability affecting certain versions of a Mule runtime component that may affect both CloudHub and on-premise customers. Versions affected: Mule 4.1.x and 4.2.x runtime released before February 2, 2021.
Credit: security@salesforce.com
Affected Software | Affected Version | How to fix |
---|---|---|
Salesforce | >=4.1.0<=4.2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-1626 is classified as a critical severity vulnerability due to its potential for remote code execution.
To fix CVE-2021-1626, upgrade your Mule runtime to version 4.2.2 or later.
CVE-2021-1626 affects Mule 4.1.x and 4.2.x runtime versions released before February 2, 2021.
Yes, CVE-2021-1626 affects both CloudHub and on-premise customers using the vulnerable Mule runtime versions.
CVE-2021-1626 is a Remote Code Execution (RCE) vulnerability that could allow attackers to execute arbitrary code on the affected systems.